[Resource Topic] 2008/183: Preimage Attacks on 3-Pass HAVAL and Step-Reduced MD5

Welcome to the resource topic for 2008/183

Title:
Preimage Attacks on 3-Pass HAVAL and Step-Reduced MD5

Authors: Jean-Philippe Aumasson, Willi Meier, Florian Mendel

Abstract:

This paper presents preimage attacks for the hash functions 3-pass HAVAL and step-reduced MD5. Introduced in 1992 and 1991 respectively, these functions underwent severe collision attacks, but no preimage attack. We describe two preimage attacks on the compression function of 3-pass HAVAL. The attacks have a complexity of about 2^{224} compression function evaluations instead of 2^{256}. Furthermore, we present several preimage attacks on the MD5 compression function that invert up to 47 (out of 64) steps within 2^{96} trials instead of 2^{128}. Though our attacks are not practical, they show that the security margin of 3-pass HAVAL and step-reduced MD5 with respect to preimage attacks is not as high as expected.

ePrint: https://eprint.iacr.org/2008/183

See all topics related to this paper.

Feel free to post resources that are related to this paper below.

Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.

For more information, see the rules for Resource Topics .